Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.1 CVE-2026-50740

CVE-2026-50740_CVE-2026-50740

A missing sanitisation vulnerability of user input in the zone-include.php script exists in Revive Adserver 6.0.7 and earlier. A low‑privileged use...

Revive Adserver CVE
MEDIUM 4.3 CVE-2026-50739

CVE-2026-50739_CVE-2026-50739

A bypass for CVE‑2026‑34913 exists with proper ownership validation that had not been applied to the reverse operation of linking campaigns and tra...

Revive Adserver CVE
LOW 3.3 CVE-2026-48936

CVE-2026-48936_CVE-2026-48936

A flaw in Node.js Permission API can cause a local server to be started (via a Unix domain socket), even without the `--allow-net` permission. T...

nodejs node 26.3.0 CVE
LOW 3.3 CVE-2026-48935

CVE-2026-48935_CVE-2026-48935

A flaw in Node.js Permission API can cause a file metadata to be modified even on a path that was set as read-only with e.g. `--allow-fs-read`. ...

nodejs node 22.22.3 CVE
MEDIUM 4.3 CVE-2026-48934

CVE-2026-48934_CVE-2026-48934

A flaw in Node.js TLS host verification can cause an attacker to bypass certification validation. This vulnerability affects all supported relea...

nodejs node 22.22.3 CVE
HIGH 7.5 CVE-2026-48933

CVE-2026-48933_CVE-2026-48933

A flaw in Node.js WebCrypto implementation can crash the process if the input of `subtle.encrypt()` is a multiple of 2GiB. This vulnerability af...

nodejs node 22.22.3 CVE
MEDIUM 5.6 CVE-2026-48930

CVE-2026-48930_CVE-2026-48930

A flaw in Node.js TLS hostname handling can cause Embedded-nul hostnames can lead to silent authority rebinding due to c-string truncation in resol...

nodejs node 22.22.3 CVE
MEDIUM 4.2 CVE-2026-48928

CVE-2026-48928_CVE-2026-48928

A inconsistency in Node.js hostname matching can cause a trust-policy bypass in multi-context mTLS setups. This vulnerability affects all suppor...

nodejs node 22.22.3 CVE
MEDIUM 5.3 CVE-2026-48619

CVE-2026-48619_CVE-2026-48619

A flaw in Node.js HTTP/2 client allows a server to send an unlimited number of ORIGIN frames, which could lead to an Out of Memory error on the cli...

nodejs node 22.22.3 CVE
HIGH 7.7 CVE-2026-48618

CVE-2026-48618_CVE-2026-48618

A flaw in Node.js TLS hostname handling can cause Node.js unicode dot separator handling can lead to tls wildcard-depth authentication bypass due t...

nodejs node 22.22.3 CVE